Empowering your business with innovative IT solutions

Your Privacy Matters

Global Privacy Policy for Protecting Your Personal Information

At Sniffer Group, we are committed to protecting your personal information and maintaining transparency about how we collect, use, store, process, and safeguard data across our website and digital services worldwide.

Privacy Policy

Effective Date: 31st January 2021

Last Updated: 19th October 2021

Sniffer Group respects your privacy and is committed to protecting personal information entrusted to us.

This Privacy Policy explains how Sniffer Group collects, uses, discloses, stores, protects, and otherwise processes personal information when you visit our website, contact us, request our services, communicate with our team, apply for a job or internship, interact with our advertising or social media channels, or otherwise engage with us.

Sniffer Group serves clients and users internationally. Accordingly, this Privacy Policy is intended to provide a global privacy framework while recognizing that specific rights, obligations, and requirements may vary depending on your country, state, province, territory, or other jurisdiction.

Where mandatory privacy or data-protection law provides rights or protections that are more specific or stronger than those described here, those requirements will apply to the extent legally applicable.

About Sniffer Group

Sniffer Group, founded in 2018, is a technology and digital solutions company based in India and serving businesses and clients internationally.

Our services may include:

For privacy matters, Sniffer Group may act as a business, controller, data fiduciary, processor, service provider, or another legally recognized role depending on the particular processing activity and applicable law.

Scope

This Privacy Policy applies to personal information collected or processed through:

  • our website and webpages;
  • contact and enquiry forms;
  • service request forms;
  • newsletter or subscription forms;
  • quotation and consultation requests;
  • career and internship applications;
  • customer and prospective-customer communications;
  • marketing and advertising campaigns;
  • social media interactions;
  • analytics and website technologies; and
  • other channels that reference this Privacy Policy.

This Policy does not automatically govern third-party websites, applications, platforms, or services that we do not control.

Where Sniffer Group processes personal information solely on behalf of a business client, the relevant client agreement, service agreement, data-processing terms, or documented instructions may also govern that processing.

Information We Collect

The information we collect depends on how you interact with us.

3.1 Information You Provide

You may voluntarily provide:

  • full name;
  • business or company name;
  • job title;
  • email address;
  • telephone or mobile number;
  • business or postal address;
  • website URL;
  • country or region;
  • service requirements;
  • project information;
  • budget information;
  • messages and enquiries;
  • files or documents;
  • meeting and consultation information;
  • feedback and testimonials; and
  • other information you choose to provide.

3.2 Career and Internship Information

When applying for employment, internships, freelance opportunities, or other positions, we may collect:

  • name and contact details;
  • resume or CV;
  • education;
  • qualifications;
  • employment history;
  • skills;
  • certifications;
  • portfolio information;
  • professional profiles;
  • interview information;
  • availability; and
  • other recruitment-related information.
3.3 Technical Information

When you use our website, certain technical information may be collected automatically, such as:

  • IP address;
  • browser type;
  • operating system;
  • device type;
  • screen or technical information;
  • referring website;
  • pages viewed;
  • interaction data;
  • approximate date and time of access;
  • language and regional settings;
  • website performance information; and
  • security and diagnostic information.
3.4 Information From Third Parties

Where permitted by law, information may be received from:

  • advertising platforms;
  • analytics providers;
  • CRM systems;
  • social media platforms;
  • recruitment platforms;
  • business partners;
  • payment providers;
  • publicly available sources; and
  • other legitimate business sources.

How We Collect Information

We may collect personal information when you:

  • submit a form;
  • contact us;
  • request a quotation;
  • request a consultation;
  • request information about our services;
  • communicate with our team;
  • subscribe to communications;
  • apply for a job or internship;
  • become a client;
  • interact with our advertisements;
  • interact with our social media accounts;
  • visit or use our website; or
  • otherwise provide information voluntarily.

Certain technical and usage information may also be collected through cookies, pixels, tags, local storage, analytics technologies, or similar technologies.

Purposes for Processing Personal Information

We may use personal information for appropriate and lawful business purposes, including:

5.1 Responding to Enquiries
To respond to questions, requests, quotations, consultations, service enquiries, and other communications.

5.2 Providing Services
To provide, manage, administer, support, maintain, and improve services requested by clients.

5.3 Project Management
To understand project requirements, communicate with clients, coordinate teams, deliver work, maintain project records, and provide support.

5.4 Business Communications
To send quotations, proposals, invoices, project updates, meeting information, administrative communications, and service-related notices.

5.5 Marketing
Where legally permitted and appropriately authorized, to provide information about services, events, educational resources, webinars, offers, reports, blogs, and other relevant communications.

5.6 Website Operation
To operate, maintain, troubleshoot, secure, and improve our website.

5.7 Analytics
To understand website traffic, user interactions, campaign performance, technical performance, and user experience.

5.8 Cyber Security
To detect, prevent, investigate, and respond to fraud, abuse, malicious activity, cyber attacks, unauthorized access, security incidents, and other threats.

5.9 Recruitment
To evaluate candidates, communicate about applications, arrange interviews, assess qualifications, and manage recruitment processes.

5.10 Legal and Regulatory Compliance
To comply with applicable laws, regulations, legal orders, regulatory requirements, and lawful governmental requests.

5.11 Business Operations
To maintain records, accounting, auditing, contract management, risk management, dispute resolution, and other legitimate operational functions.

Legal Bases and Processing Conditions

Depending on the applicable jurisdiction and the particular processing activity, we may process personal information based on:

  • consent;
  • performance of a contract;
  • steps taken before entering into a contract;
  • compliance with legal obligations;
  • legitimate interests where recognized by applicable law;
  • protection of rights, property, security, or legal interests;
  • public-interest grounds where applicable; or
  • another lawful basis recognized by applicable law.

Where consent is legally required, we will request consent using an appropriate mechanism.

Where processing relies on consent, withdrawal of consent generally does not affect the lawfulness of processing carried out before withdrawal.

Contact and Lead-Generation Forms

When you engage Sniffer Group, we may process information necessary to provide the agreed services.

  • respond to enquiries;
  • understand project requirements;
  • provide quotations;
  • schedule consultations;
  • provide information about services;
  • communicate with prospective clients;
  • maintain business records; and
  • take requested next steps.

Forms may be connected to third-party services such as CRM systems, email platforms, anti-spam tools, automation platforms, analytics providers, or communication systems.

Please do not submit passwords, payment-card information, private encryption keys, production credentials, or highly confidential information through ordinary public forms unless specifically requested through a secure method.

Client and Project Data

When you engage Sniffer Group, we may process information necessary to provide the agreed services.

Depending on the project, this may include:

  • business contact information;
  • technical information;
  • website or application information;
  • project documentation;
  • marketing information;
  • campaign information;
  • access information;
  • security-testing information;
  • reports; and
  • other client-provided materials.

Where we process personal information on a client’s behalf, the client may determine the purposes and means of processing and may provide instructions regarding our processing.

Clients are responsible for ensuring they have appropriate authority or lawful basis to provide personal information to Sniffer Group where required.

Cyber Security and VAPT Engagements

Sniffer Group may provide Cyber Security Services and Vulnerability Assessment & Penetration Testing Services.

During an authorized engagement, we may process technical information, system information, application information, logs, credentials, identifiers, test data, reports, or other information supplied by the client.

Security testing will be conducted only within the agreed and authorized scope.

Clients are responsible for ensuring they have lawful authority to authorize security testing of the relevant systems, applications, networks, infrastructure, accounts, or data.

We will not intentionally use information obtained during an authorized security engagement for unrelated purposes.

Marketing Communications

Subject to applicable law, we may send marketing or informational communications relating to:

  • Cyber Security Services;
  • VAPT;
  • Digital Marketing;
  • SEO;
  • Performance Marketing;
  • Web Development;
  • Application Development;
  • Corporate Training;
  • educational resources;
  • blogs;
  • webinars;
  • events;
  • company announcements; and
  • relevant offers.

You may unsubscribe from promotional email communications using the unsubscribe option provided in the communication or by contacting us.

You may continue to receive necessary transactional, administrative, security, contractual, or service-related communications.

Cookies and Similar Technologies

Our website may use:

  • strictly necessary cookies;
  • functional cookies;
  • analytics cookies;
  • performance cookies;
  • advertising cookies;
  • pixels;
  • tags;
  • local storage; and
  • similar technologies.

These technologies may be used to:

  • operate website features;
  • remember preferences;
  • understand website usage;
  • analyze performance;
  • measure advertising;
  • improve user experience;
  • support security; and
  • support remarketing where legally permitted.

Our separate Cookie Policy provides additional information about these technologies.

Where required by law, non-essential cookies will be activated only after the appropriate consent or user choice.

Analytics and Advertising Platforms

We may use third-party tools to measure website performance, advertising campaigns, and user interactions.

Depending on the technologies currently deployed, these may include services such as:

  • Google Analytics;
  • Google Ads;
  • Google Tag Manager;
  • Meta advertising tools;
  • LinkedIn advertising tools;
  • Microsoft advertising or analytics;
  • CRM platforms;
  • conversion tracking systems;
  • remarketing technologies; and
  • other analytics or advertising providers.

These providers may process information according to their own policies and contractual arrangements.

Advertising and Remarketing

Sniffer Group may use advertising and remarketing technologies to:

  • measure advertising effectiveness;
  • understand campaign performance;
  • create relevant audiences;
  • show advertisements to users who previously interacted with our website or content; and
  • improve marketing campaigns.

Where applicable, advertising technologies may use cookies, pixels, identifiers, or similar technologies subject to the applicable platform rules and legal requirements.

Sharing Personal Information

We may share personal information where reasonably necessary and legally permitted with:

  • hosting providers;
  • cloud providers;
  • CRM providers;
  • email and communication providers;
  • analytics providers;
  • advertising providers;
  • cybersecurity providers;
  • payment providers;
  • recruitment platforms;
  • professional advisors;
  • contractors or service providers;
  • business partners;
  • regulators;
  • courts;
  • law-enforcement authorities; and
  • other parties where legally required or otherwise permitted.

We do not treat personal information as a commodity for unrestricted sale.

Where applicable law gives you a right to opt out of certain forms of sharing, selling, or targeted advertising, we will honor that right where the law applies.

Service Providers and Processors

Third-party providers may process personal information on our behalf.

We seek to use providers that provide appropriate safeguards suitable to the nature of the processing.

Depending on the relationship, providers may be contractually required to:

  • use information only for authorized purposes;
  • maintain confidentiality;
  • apply appropriate security measures;
  • assist with applicable privacy obligations; and
  • securely delete or return information where required.

International Data Transfers

Because Sniffer Group serves clients internationally and relies on globally available technology providers, personal information may be processed or transferred across countries.

Where applicable law regulates international transfers, we will use a legally recognized transfer mechanism or safeguard, which may include:

  • an adequacy decision;
  • standard contractual clauses or equivalent contractual mechanisms;
  • approved contractual clauses;
  • binding corporate rules where applicable;
  • consent or another legally recognized transfer exception where appropriate; or
  • another lawful mechanism recognized by the applicable jurisdiction.

EU and UK data-protection frameworks contain specific requirements for certain international transfers, including appropriate safeguards in circumstances where an adequacy decision does not apply. Brazil likewise regulates international transfers under its LGPD framework.

Data Retention

We retain personal information only for as long as reasonably necessary for the purposes described in this Privacy Policy, unless a longer period is required or permitted by law.

Retention may depend on:

  • the purpose of processing;
  • the nature of the information;
  • the duration of a client relationship;
  • contractual requirements;
  • legal obligations;
  • accounting requirements;
  • security requirements;
  • dispute resolution; and
  • applicable limitation periods.

Where specific retention periods are not practical, we may use criteria such as the continuing business need, legal obligations, and risk associated with the information.

When information is no longer required, we may delete, anonymize, aggregate, or securely dispose of it where reasonably practicable.

Data Security

We use reasonable and appropriate technical, administrative, physical, and organizational safeguards designed to protect personal information.

Depending on the circumstances, safeguards may include:

  • access controls;
  • authentication;
  • authorization controls;
  • encryption where appropriate;
  • security monitoring;
  • logging;
  • backups;
  • malware protection;
  • secure communications;
  • employee or contractor confidentiality obligations;
  • vendor controls;
  • incident response procedures; and
  • other security measures appropriate to the risks.

No electronic transmission or storage system can be guaranteed to be completely secure.

Security Incidents and Data Breaches

If we become aware of a security incident involving personal information, we may:

  • investigate the incident;
  • contain and mitigate the incident;
  • restore affected systems;
  • preserve evidence;
  • assess potential impact;
  • notify individuals where required;
  • notify regulators or authorities where required;
  • cooperate with relevant parties; and
  • implement corrective measures.
Notifications will be made when and in the manner required by applicable law.

Global Privacy Rights

Your privacy rights depend on your location and applicable law.

Depending on the jurisdiction, you may have rights such as:

  • right to know whether personal information is processed;
  • right to access personal information;
  • right to receive information about processing;
  • right to correction;
  • right to deletion or erasure;
  • right to restrict processing;
  • right to object to certain processing;
  • right to data portability;
  • right to withdraw consent;
  • right to opt out of certain marketing or targeted advertising;
  • right to opt out of certain sale or sharing of personal information where applicable;
  • rights concerning profiling or automated decision-making where applicable;
  • right to lodge a complaint with a supervisory or regulatory authority; and
  • other rights provided by local law.

European Economic Area and United Kingdom

If you are located in the European Economic Area, the EU, or the United Kingdom and the relevant law applies to our processing, additional requirements may apply to our processing of your personal data.

These may include requirements relating to:

  • lawful bases;
  • transparency;
  • data-subject rights;
  • retention;
  • international transfers;
  • security;
  • data protection impact assessments where applicable;
  • processors;
  • supervisory authorities; and
  • other GDPR/UK GDPR requirements.

Where applicable, you may contact your local data protection authority or supervisory authority if you believe your rights have been infringed.

UK privacy requirements may also regulate transfers of personal information to organizations outside the UK through specific transfer rules and safeguards.

United States Privacy Rights

If you are located in the United States, privacy rights vary by state and may depend on whether the applicable law covers you and Sniffer Group.

Certain state privacy laws may provide rights relating to:

  • access;
  • correction;
  • deletion;
  • portability;
  • opting out of targeted advertising;
  • opting out of certain sales or sharing;
  • profiling or automated decision-making;
  • sensitive personal information; and
  • appeals or complaints.

Where applicable law requires a specific notice at or before collection, we may provide that notice through the relevant webpage, form, cookie banner, or other mechanism.

For example, California’s privacy framework includes requirements concerning notices at collection and related consumer rights where applicable.

We do not knowingly discriminate against individuals for exercising privacy rights where prohibited by applicable law.

California Residents

If California privacy law applies to you, you may have additional rights depending on the specific law and circumstances, including rights to:

  • know/access certain personal information;
  • correct certain information;
  • delete certain information;
  • opt out of sale or sharing where applicable;
  • opt out of certain targeted advertising;
  • limit certain uses of sensitive personal information where applicable; and
  • appeal certain decisions.

Requests should be submitted through our designated privacy contact. We may need to verify your identity before fulfilling certain requests.

India

Where India’s privacy and data-protection laws apply, including the Digital Personal Data Protection Act, 2023 and applicable rules and regulations, we will process personal information in accordance with the requirements applicable to the relevant processing activity.

India’s DPDP Rules 2025 were notified on November 14, 2025 and provide implementation requirements relating to areas including notice, consent, security safeguards, and rights.

Where applicable, individuals may have rights and grievance mechanisms provided by Indian law.

Brazil

Where Brazil’s Lei Geral de Proteção de Dados (LGPD) applies, we will process personal data in accordance with applicable LGPD requirements.

Where applicable, individuals may have rights relating to access, correction, deletion, portability, information about data sharing, and other rights provided by the LGPD.

International transfers of personal data subject to the LGPD are regulated by Brazil’s data protection framework and applicable ANPD rules.

Canada

Where Canadian privacy law applies, including applicable federal or provincial privacy legislation, Sniffer Group will process personal information in accordance with the requirements applicable to the relevant processing activity.

Depending on the applicable law, individuals may have rights relating to:

  • access;
  • correction;
  • consent;
  • accountability;
  • safeguarding of personal information; and
  • complaints.

Children and Minors

Our general business website is not intentionally designed to collect personal information from children where such collection is prohibited by applicable law.

Where our services, training programs, or other activities involve minors, we may apply additional notices, consent requirements, safeguards, or procedures as required by applicable law.

If you believe a minor has provided personal information to us inappropriately, please contact us.

Recruitment and Careers

Information submitted for jobs, internships, employment, or freelance opportunities may be used for:

  • application review;
  • recruitment;
  • candidate communication;
  • interviews;
  • qualification assessment;
  • reference checks where appropriate;
  • future suitable opportunities where legally permitted; and
  • recruitment record management.

Candidate information may be shared with authorized personnel or recruitment providers where reasonably necessary.

Testimonials and Reviews

If you voluntarily submit a testimonial, review, case-study statement, company logo, photograph, or other content for publication, we may use that content according to the permission or agreement associated with your submission.

You should ensure you have the authority to provide any third-party information or content you submit.

Third-Party Links

Our website may contain links to third-party websites, applications, social platforms, payment providers, advertising platforms, or other services.

Sniffer Group does not control third-party privacy practices.

You should review the relevant third party’s privacy policy before providing personal information.

Social Media

When you interact with us through social media platforms, the relevant platform may collect information about you according to its own privacy policy and terms.

Information you publicly post may be visible to other users.

Avoid publicly sharing passwords, confidential data, financial details, security credentials, or other sensitive information.

Payment Information

Where payments are processed through third-party payment providers, payment and financial information may be collected and processed directly by the relevant payment provider.

Unless expressly stated otherwise, Sniffer Group does not intentionally store complete payment-card information on its general website systems.

Payment providers remain responsible for their own processing activities according to their applicable terms and privacy practices.

Automated Decision-Making and Profiling

We may use automated technologies for purposes such as:

  • spam detection;
  • security monitoring;
  • analytics;
  • advertising measurement;
  • campaign optimization; and
  • audience management.

Where applicable law grants specific rights concerning solely automated decision-making or profiling, those rights will be respected.

Your Responsibility When Providing Information

You should provide information that is accurate, lawful, and appropriate for the purpose for which it is requested.

You should not provide:

  • passwords;
  • private encryption keys;
  • unauthorized third-party information;
  • confidential information through public forms;
  • sensitive information where it is not necessary; or
  • information you are legally prohibited from sharing.

If you provide information about another person, you should ensure you have the necessary authority or lawful basis to provide that information.

Data Accuracy and Correction

We seek to maintain accurate and appropriate information.

If information you have provided becomes inaccurate or outdated, you may contact us to request correction where applicable.

Privacy Requests

To submit a privacy request, contact:

Sniffer Group
Contact No.: +91 99791 56756
Email: inquiry@sniffergroup.com
Website: https://sniffergroup.com

Please provide sufficient information for us to understand and process your request.

We may need to verify your identity before fulfilling certain requests.

Where legally permitted, requests may be refused or limited where an applicable exemption, legal obligation, third-party right, confidentiality obligation, or other lawful restriction applies.

Complaints and Grievances

If you have a privacy concern, we encourage you to contact us first so that we can investigate and attempt to resolve the issue.

Where applicable law provides you with the right to complain to a supervisory authority, data protection authority, regulator, or other governmental body, you may exercise that right.

International Service Providers

Sniffer Group may use technology and service providers located in different countries.

Depending on the service, these may include providers of:

  • hosting;
  • cloud storage;
  • email;
  • CRM;
  • cybersecurity;
  • analytics;
  • advertising;
  • marketing automation;
  • recruitment;
  • communications;
  • payment processing; and
  • website functionality.

The specific list of providers may change as our technology stack changes.

Where applicable law requires disclosure of particular recipients, transfer locations, or mechanisms, we will provide the relevant information in the applicable privacy notice.

Retention After Account or Relationship Ends

Ending your relationship with Sniffer Group or unsubscribing from marketing communications does not necessarily cause immediate deletion of all information.

We may retain certain information where reasonably necessary for:

  • legal obligations;
  • financial records;
  • contractual records;
  • security;
  • fraud prevention;
  • dispute resolution;
  • enforcement of agreements;
  • regulatory compliance; or
  • legitimate record-keeping requirements.

Changes to This Privacy Policy

We may update this Privacy Policy from time to time due to:

  • changes to our services;
  • changes to our website;
  • new technology;
  • new third-party providers;
  • changes in business operations;
  • changes in privacy laws;
  • regulatory guidance; or
  • changes in data-processing practices.

The updated version will be published on this page with a new Last Updated date. Where legally required, we may provide additional notice or obtain additional consent.

Governing Law and Applicable Rights

This Privacy Policy is intended to operate as a global privacy notice rather than to exclude mandatory privacy protections applicable to individuals in their jurisdiction.

Where a local privacy law applies to you and provides rights or obligations that differ from this Policy, the mandatory requirements of that law will apply to the relevant processing.

Nothing in this Policy is intended to contractually waive or limit privacy rights that cannot lawfully be waived or limited.

No Absolute Security Guarantee

Although Sniffer Group maintains reasonable safeguards, no system connected to the internet can be guaranteed to be completely secure.

We therefore cannot guarantee that information will always be immune from:

  • unauthorized access;
  • accidental loss;
  • cyber attacks;
  • interception;
  • misuse;
  • system failures; or
  • other security incidents.

We continuously review security measures appropriate to our operations and risks.

Contact Us

For questions, privacy requests, complaints, or concerns, contact:

Sniffer Group
Email: inquiry@sniffergroup.com
Phone: +91 99791 56756
Website: https://sniffergroup.com

For a request relating to a particular jurisdiction, please mention your country, state, or region so that we can identify the applicable privacy framework.

Important Legal Notice

This Privacy Policy is a general global privacy notice and is not a substitute for jurisdiction-specific legal advice.

The actual privacy obligations applicable to Sniffer Group depend on factors including:

  • where Sniffer Group operates;
  • where individuals are located;
  • what information is collected;
  • why information is processed;
  • whether cookies or targeted advertising are used;
  • which third-party providers are used;
  • whether Sniffer Group acts as a controller, processor, fiduciary, service provider, or another legal role;
  • whether services are offered to children or minors;
  • whether international transfers occur; and
  • whether specific local laws apply.

Sniffer Group may supplement this Policy with jurisdiction-specific notices, cookie notices, consent notices, contractual terms, data-processing agreements, or other legally required disclosures.

By using our website, you acknowledge that you have had the opportunity to review this Privacy Policy. Where applicable law requires affirmative consent or another specific legal mechanism, that mechanism will be provided separately.

Need More Information?

Have a Privacy-Related Question? We’re Here to Help.

Contact Sniffer Group for questions about your personal data, privacy rights, cookies, or how we process your information.

Table of Contents